[go: up one dir, main page]
More Web Proxy on the site http://driver.im/

CN105072112A - Identity authentication method and identity authentication device - Google Patents

Identity authentication method and identity authentication device Download PDF

Info

Publication number
CN105072112A
CN105072112A CN201510484932.2A CN201510484932A CN105072112A CN 105072112 A CN105072112 A CN 105072112A CN 201510484932 A CN201510484932 A CN 201510484932A CN 105072112 A CN105072112 A CN 105072112A
Authority
CN
China
Prior art keywords
user
authentication
predetermined time
user profile
authentication client
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201510484932.2A
Other languages
Chinese (zh)
Inventor
张尼
张云勇
王志军
刘镝
汤雅妃
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China United Network Communications Group Co Ltd
Original Assignee
China United Network Communications Group Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China United Network Communications Group Co Ltd filed Critical China United Network Communications Group Co Ltd
Priority to CN201510484932.2A priority Critical patent/CN105072112A/en
Publication of CN105072112A publication Critical patent/CN105072112A/en
Priority to US15/230,059 priority patent/US20170041307A1/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0876Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/60Context-dependent security
    • H04W12/69Identity-dependent
    • H04W12/71Hardware identity
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/60Context-dependent security
    • H04W12/69Identity-dependent
    • H04W12/72Subscriber identity

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Power Engineering (AREA)
  • Telephonic Communication Services (AREA)
  • Mobile Radio Communication Systems (AREA)

Abstract

The embodiment of the invention discloses an identity authentication method and an identity authentication device, and relates to the technical field of communication. According to the identity authentication method and the identity authentication device, the problem of relatively poor user experience as a large number of complex user names and passwords need to be remembered is avoided, and the identity authentication efficiency can be improved without downloading a SIM card application. The specific scheme is that an identity authentication server receives an identity authentication request sent by a third-party platform, determines an identifier of a first identity authentication client by searching for a pre-stored corresponding relationship based on a phone number, sends a user information request if the first identity authentication client is in an online state, sends an authentication success message to the third-party platform if a user information response carrying user information is received and the user information is in accordance with user information stored in the identity authentication server, and sends an authentication failure message to the third-party platform if the user information is inconsistent with the user information stored in the identity authentication server or the user information response carrying the user information is not received.

Description

A kind of identity identifying method and device
Technical field
The present invention relates to communication technical field, particularly relate to a kind of identity identifying method and device.
Background technology
Along with the develop rapidly of mobile Internet, user is no longer satisfied with the communication services such as call, and user becomes a main trend of mobile Internet business development by the acquisition for mobile terminal geodata and services based on mobile phone.At present, be that the mobile Internet business of main representative provides more convenience to serve efficiently for user with mobile browsing, mobile search, mobile phone games, mobile social activity, mobile payment, Mobile banking etc., predictably, along with Long Term Evolution is (English: LongTermEvolution, abbreviation: the LTE) maturation of technology, e-commerce technology etc. and universal, mobile Internet business will have wide development space.
In order to ensure the fail safe of mobile Internet business, before user carries out mobile Internet business, first need to carry out authentication to user.Authentication refers to the process whether identity of reliably authentication of users is consistent with the identity that user claims, when after authentication success, user just can carry out corresponding business.At present, conventional identity identifying method has two kinds: one is the identity identifying method of " user name+password+short message verification code ", the unsafe problems caused is revealed in order to prevent user name, password and short message verification code, user usually need for the 3rd different net platforms (namely, carry out the required platform logged in of mobile Internet business) different username and passwords is set, and username and password is more complicated better, another kind is (English: SubscriberIdentityModule based on client identification module, abbreviation: the SIM) identity identifying method of card application, in the method, SIM card application is needed to be downloaded to SIM card by the mode of note, 4 groups of ETSIs are preserved (English: EuropeanTelecommunicationsStandardsInstitute in SIM card application, abbreviation: 03.48 key ETSI) defined, SIM card application and mobile operator consult selection one group key and are encrypted same random number, by comparing SIM card application, to user, authentication is carried out to whether the encrypted result of this random number is consistent with the server of mobile operator to the encrypted result of this random number.
But there are the following problems for said method: the identity identifying method adopting " user name+password+short message verification code ", user needs the username and password remembering large amount of complex, and Consumer's Experience is poor; Adopt the identity identifying method based on SIM card application, need to download SIM card application by the mode of note, SIM card application is generally 2-7KB (kilobytes), and 70 bytes can be downloaded at most by a note, therefore, adopt the transmission 30-100 bar note needing zero defect in this way, efficiency is too low.
Summary of the invention
Embodiments of the invention provide a kind of identity identifying method and device, avoid and need to remember the poor problem of Consumer's Experience that the username and password of large amount of complex causes, and without the need to downloading SIM card application, can improve the efficiency of authentication.
For achieving the above object, embodiments of the invention adopt following technical scheme:
The first aspect of the embodiment of the present invention, provides a kind of identity identifying method, and be applied to user and log in the process of third-party platform, described identity identifying method comprises:
Authentication server receives the ID authentication request that third-party platform sends, and described ID authentication request comprises the phone number of user;
Described authentication server is according to described phone number, by searching the corresponding relation between phone number and the mark of authentication client prestored, determine the mark of the first authentication client, the mark being designated the authentication client corresponding with described phone number of described first authentication client;
If described first authentication client is presence, then described authentication server sends user information request to described first authentication client, described user information request is used to indicate described user and is logging in described third-party platform, and ask described first authentication client report of user information, described user profile is used to indicate the signal intelligence of described user in preset time period;
If described authentication server receives the user profile response of carrying described user profile that described first authentication client reports, and the described user profile of carrying in described user profile response is consistent with the user profile that described authentication server stores, then described authentication server sends authentication success message to described third-party platform; If described authentication server receives the user profile response of carrying described user profile that described first authentication client reports, and the user profile that the described user profile of carrying in described user profile response and described authentication server store is inconsistent, or, described authentication server does not receive the user profile response of carrying described user profile that described first authentication client reports, then described authentication server sends authentification failure message to described third-party platform.
The second aspect of the embodiment of the present invention, provides a kind of identity identifying method, and be applied to user and log in the process of third-party platform, described identity identifying method comprises:
First authentication client receives the user information request that authentication server sends, described user information request is used to indicate described user and is logging in described third-party platform, and ask described first authentication client report of user information, described user profile is used to indicate the signal intelligence of user in preset time period;
If described first authentication client receives the confirmation operation of described user, then report the user profile response of carrying described user profile to described authentication server, according to the described user profile of carrying in described user profile response, authentication is carried out to described user to indicate described authentication server.
The third aspect of the embodiment of the present invention, provides a kind of authentication server, is applied to user and logs in the process of third-party platform, comprising:
Receiving element, for receiving the ID authentication request that third-party platform sends, described ID authentication request comprises the phone number of user;
Determining unit, for the described phone number received according to described receiving element, by searching the corresponding relation between phone number and the mark of authentication client prestored, determine the mark of the first authentication client, the mark being designated the authentication client corresponding with described phone number of described first authentication client;
Transmitting element, if be presence for described first authentication client, then send user information request to described first authentication client, described user information request is used to indicate described user and is logging in described third-party platform, and ask described first authentication client report of user information, described user profile is used to indicate the signal intelligence of described user in preset time period;
Described receiving element, also for receiving the user profile response of carrying described user profile that described first authentication client reports;
Described transmitting element, if also receive for described receiving element the user profile response of carrying described user profile that described first authentication client reports, and the described user profile of carrying in described user profile response is consistent with the user profile that described authentication server stores, then send authentication success message to described third-party platform; If described receiving element receives the user profile response of carrying described user profile that described first authentication client reports, and the user profile that the described user profile of carrying in described user profile response and described authentication server store is inconsistent, or, described receiving element does not receive the user profile response of carrying described user profile that described first authentication client reports, then send authentification failure message to described third-party platform.
The fourth aspect of the embodiment of the present invention, provides a kind of authentication client, is applied to user and logs in the process of third-party platform, comprising:
Receiving element, for receiving the user information request that authentication server sends, described user information request is used to indicate described user and is logging in described third-party platform, and ask described authentication client report of user information, described user profile is used to indicate the signal intelligence of user in preset time period;
Transmitting element, if receive the confirmation operation of described user for described first authentication client, then report the user profile response of carrying described user profile to described authentication server, according to the described user profile of carrying in described user profile response, authentication is carried out to described user to indicate described authentication server.
The identity identifying method that the embodiment of the present invention provides and device, authentication server receives the ID authentication request that third-party platform sends, and according to the phone number that ID authentication request comprises, by searching the corresponding relation between phone number and the mark of authentication client prestored, determine the mark of the first authentication client; If the first authentication client is presence, then send user information request to the first authentication client; If authentication server receives the user profile response of carrying user profile that the first authentication client reports, and this user profile is consistent with the user profile that authentication server stores, then authentication server sends authentication success message to third-party platform; If authentication server receives the user profile response of carrying user profile that the first authentication client reports, and the user profile that this user profile and authentication server store is inconsistent, or, authentication server does not receive the user profile response of carrying user profile that the first authentication client reports, then authentication server sends authentification failure message to third-party platform.
Compared with the identity identifying method of " user name+password+short message verification code " in prior art, in this programme, user is without the need to remembering the username and password of large amount of complex, third-party platform only need to authentication server and provides phone number, by the phone number of authentication server according to user, authentication is carried out to user, avoids and need to remember the poor problem of Consumer's Experience that the username and password of large amount of complex causes.Compared with the identity identifying method applied based on SIM card in prior art, in this programme, without the need to downloading SIM card application, user only need install authentication client on mobile terminals, just can carry out authentication.Because user profile is used to indicate the signal intelligence of user in preset time period, user profile, for authentication server and authentication client, is all easily obtain, and therefore, adopts this programme can improve the efficiency of authentication.
Accompanying drawing explanation
In order to be illustrated more clearly in the embodiment of the present invention or technical scheme of the prior art, be briefly described to the accompanying drawing used required in embodiment or description of the prior art below, apparently, accompanying drawing in the following describes is only some embodiments of the present invention, for those of ordinary skill in the art, under the prerequisite not paying creative work, other accompanying drawing can also be obtained according to these accompanying drawings.
The flow chart of a kind of identity identifying method that Fig. 1 provides for the embodiment of the present invention;
The flow chart of the another kind of identity identifying method that Fig. 2 provides for the embodiment of the present invention;
The flow chart of the another kind of identity identifying method that Fig. 3 provides for the embodiment of the present invention;
The flow chart of the another kind of identity identifying method that Fig. 4 provides for the embodiment of the present invention;
The composition schematic diagram of a kind of authentication server that Fig. 5 provides for the embodiment of the present invention;
The composition schematic diagram of the another kind of authentication server that Fig. 6 provides for the embodiment of the present invention;
The composition schematic diagram of the another kind of authentication server that Fig. 7 provides for the embodiment of the present invention;
The composition schematic diagram of a kind of authentication client that Fig. 8 provides for the embodiment of the present invention;
The composition schematic diagram of the another kind of authentication client that Fig. 9 provides for the embodiment of the present invention;
The composition schematic diagram of a kind of identity authorization system that Figure 10 provides for the embodiment of the present invention.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the present invention, be clearly and completely described the technical scheme in the embodiment of the present invention, obviously, described embodiment is only the present invention's part embodiment, instead of whole embodiments.Based on the embodiment in the present invention, those of ordinary skill in the art, not making the every other embodiment obtained under creative work prerequisite, belong to the scope of protection of the invention.
Embodiment 1
The embodiment of the present invention provides a kind of identity identifying method, is applied to the process that user logs in third-party platform, and as shown in Figure 1, this identity identifying method comprises:
S101, authentication server receive the ID authentication request that third-party platform sends, and this ID authentication request comprises the phone number of user.
Wherein, the phone number that this ID authentication request comprises is the phone number of user's input when logging on third-party platform.Authentication server be that mobile operator is arranged, for carrying out the server of authentication to user.Third-party platform is that user carries out the required platform logged in of Internet service, and such as, third-party platform can be micro-letter, QQ, Taobao, and game website etc.
S102, authentication server, according to this phone number, by searching the corresponding relation between phone number and the mark of authentication client prestored, determine the mark of the first authentication client.
Wherein, the mark being designated the authentication client corresponding with this phone number of the first authentication client.First authentication client be arranged on the mobile terminal of user, for carrying out the client of authentication to user.
If S103 first authentication client is presence, then authentication server sends user information request to the first authentication client.
Wherein, the first authentication client is presence, then represent that authentication server can communicate with the first authentication client.It is (English: HyperTextTransferProtocoloverSecureSocketLayer that authentication server and the first authentication client can pass through security socket layer HTML (Hypertext Markup Language), abbreviation: HTTPS) connect, and by shared key, Content of Communication is encrypted.Certainly, authentication server and the first authentication client also can be connected by other secure transfer protocol, and the embodiment of the present invention is not construed as limiting this.
User information request is used to indicate user and logs in third-party platform, and asks the first authentication client report of user information, and user profile is used to indicate the signal intelligence of user in preset time period.Concrete, the signal intelligence of user in preset time period can be message registration, caller number of times and called number of times etc. in the preset time period of user, and the embodiment of the present invention is not construed as limiting this.
If S104 authentication server receives the user profile response of carrying user profile that the first authentication client reports, and the user profile of carrying in user profile response is consistent with the user profile that authentication server stores, then authentication server sends authentication success message to third-party platform; If authentication server receives the user profile response of carrying user profile that the first authentication client reports, and the user profile that the user profile of carrying in user profile response and authentication server store is inconsistent, or, authentication server does not receive the user profile response of carrying user profile that the first authentication client reports, then authentication server sends authentification failure message to third-party platform.
Wherein, authentication server is previously stored with the user profile of each user, and authentication server can obtain the user profile of these users by base station.If the user profile of carrying in user profile response is consistent with the user profile that authentication server stores, then represent that the identity that the identity of this user and its are claimed is consistent, authentication server is to the authentication success of this user, now, authentication server sends authentication success message to third-party platform.After third-party platform receives authentication success message, allow this user to log in and carry out next step operation.If the user profile that the user profile of carrying in user profile response and authentication server store is inconsistent, then represent that the identity that the identity of this user is claimed with it is inconsistent, authentication server is to the authentication failure of this user; Or, if authentication server does not receive the user profile response of carrying user profile that the first authentication client reports, then authentication server is to the authentication failure of this user, and now, authentication server sends authentification failure message to third-party platform.After third-party platform receives authentification failure message, then forbid that this user logs in and carries out next step operation.
The identity identifying method that the embodiment of the present invention provides, authentication server receives the ID authentication request that third-party platform sends, and according to the phone number that ID authentication request comprises, by searching the corresponding relation between phone number and the mark of authentication client prestored, determine the mark of the first authentication client; If the first authentication client is presence, then send user information request to the first authentication client; If authentication server receives the user profile response of carrying user profile that the first authentication client reports, and this user profile is consistent with the user profile that authentication server stores, then authentication server sends authentication success message to third-party platform; If authentication server receives the user profile response of carrying user profile that the first authentication client reports, and the user profile that this user profile and authentication server store is inconsistent, or, authentication server does not receive the user profile response of carrying user profile that the first authentication client reports, then authentication server sends authentification failure message to third-party platform.
Compared with the identity identifying method of " user name+password+short message verification code " in prior art, in this programme, user is without the need to remembering the username and password of large amount of complex, third-party platform only need to authentication server and provides phone number, by the phone number of authentication server according to user, authentication is carried out to user, avoids and need to remember the poor problem of Consumer's Experience that the username and password of large amount of complex causes.Compared with the identity identifying method applied based on SIM card in prior art, in this programme, without the need to downloading SIM card application, user only need install authentication client on mobile terminals, just can carry out authentication.Because user profile is used to indicate the signal intelligence of user in preset time period, user profile, for authentication server and authentication client, is all easily obtain, and therefore, adopts this programme can improve the efficiency of authentication.
Embodiment 2
The embodiment of the present invention provides a kind of identity identifying method, is applied to user and logs in the process of third-party platform, and as shown in Figure 2, this identity identifying method comprises:
S201, the first authentication client receive the user information request that authentication server sends.
Wherein, the first authentication client be arranged on the mobile terminal of user, for carrying out the client of authentication to user.Authentication server be that mobile operator is arranged, for carrying out the server of authentication to user.User information request is used to indicate user and logs in third-party platform, and asks the first authentication client report of user information, and user profile is used to indicate the signal intelligence of user in preset time period.
If S202 first authentication client receives the confirmation operation of user, then report the user profile response of carrying user profile to authentication server, according to the user profile of carrying in user profile response, authentication is carried out to this user to indicate authentication server.
Wherein, the first authentication client can be carried out with user alternately.User is in the process logging in third-party platform, when the first authentication client receives the user information request of authentication server transmission, first authentication client can wait for the confirmation operation of user, and this confirmation operation is for representing that user is logging in this third-party platform really.If the first authentication client receives the confirmation operation of user, then report the user profile response of carrying user profile, if the first authentication client does not receive the confirmation operation of user, then can not report the user profile response of carrying user profile.When the cell-phone number that other people usurp user logs in, user can not carry out confirmation operation.
Exemplary, after first authentication client receives the user information request of authentication server transmission, a message window can be ejected, and " user logs in third-party platform " printed words are shown on this message window, or whether display " sends user profile to respond " printed words, also comprise "Yes" and "No" two buttons in this message window, user carries out confirmation operation by clicking this button of "Yes".Certainly, user also can carry out confirmation operation by " transmission " button in click first authentication client.User can also carry out confirmation operation etc. by the mode sending note.The embodiment of the present invention does not limit the mode that user carries out confirmation operation here.
The identity identifying method that the embodiment of the present invention provides, report the user profile of carrying user profile to respond by the first authentication client to authentication server, with the user profile of carrying in indicating authentication server corresponding according to user profile, authentication is carried out to this user.Compared with the identity identifying method of " user name+password+short message verification code " in prior art, in this programme, user is without the need to remembering the username and password of large amount of complex, authentication procedures is completed by authentication server and authentication client, the problem that the Consumer's Experience that the username and password remembering large amount of complex therefore can be avoided to cause is poor.Compared with the identity identifying method applied based on SIM card in prior art, in this programme, without the need to downloading SIM card application, user only need install authentication client on mobile terminals, just can carry out authentication.Because user profile is used to indicate the signal intelligence of user in preset time period, user profile, for authentication server and authentication client, is all easily obtain, and therefore, adopts this programme can improve the efficiency of authentication.
Embodiment 3
The embodiment of the present invention provides a kind of identity identifying method, is applied to user and logs in the process of third-party platform, and as shown in Figure 3, this identity identifying method comprises:
S301, the first authentication client receive the pre-assigned time parameter of authentication server.
Wherein, the first authentication client be arranged on the mobile terminal of user, for carrying out the client of authentication to user.Authentication server be that mobile operator is arranged, for carrying out the server of authentication to user.
Time parameter comprises: the first predetermined time t1 and the second predetermined time t2.T1 and t2 can be the time parameter of authentication server stochastic generation.For different authentication clients, authentication server can distribute different t1 and t2.First authentication client can receive the pre-assigned time parameter of authentication server when initiating switchup every day, and the time parameter that the first authentication client receives every day can be different.
S302, the first authentication client are according to this time parameter, and recording user at the geographical location information of the first predetermined time, and records the caller number of times of this user within the time period of the first predetermined time to the second predetermined time and called number of times.
Wherein, the first authentication client can pass through global positioning system (English: GlobalPositioningSystem, abbreviation: GPS) obtain the geographical location information of user in the first moment.
Exemplary, suppose that t1 be 8:00, t2 is 9:00, then the first authentication client needs the geographical location information of recording user when 8:00, and the caller number of times of recording user within the time period of 8:00 to 9:00 and called number of times.The geographical location information of user when 8:00, be embodied as the geographical location information of mobile terminal when 8:00 of user, the caller number of times of user within the time period of 8:00 to 9:00 and called number of times, the caller number of times of the phone number being embodied as user within the time period of 8:00 to 9:00 and called number of times.
S303, user log on third-party platform.
When user needs to log on third-party platform, user only at third-party platform input handset number, and need wait for that authentication server carries out authentication to user.
S304, third-party platform send ID authentication request to authentication server, and ID authentication request comprises the phone number of this user.
In the present embodiment, the phone number of user is carried in ID authentication request by third-party platform, be transmitted to authentication server, carry out authentication by authentication server to user, third-party platform only need wait for the authentication result that authentication server returns.
S305, authentication server, according to this phone number, search the first corresponding relation, obtain the mark of the first authentication client.
Wherein, the mark being designated the authentication client corresponding with this phone number of the first authentication client.Authentication server stores the first corresponding relation and the second corresponding relation.
First corresponding relation comprises: the phone number of each user, and the mark of the authentication client corresponding with each phone number, international mobile subscriber identity is (English: InternationalMobileSubscriberIdentificationNumber, abbreviation: IMSI), International Mobile Equipment Identity code is (English: InternationalMobileEquipmentIdentity, abbreviation: IMEI), first predetermined time, second predetermined time, user is at the geographical location information of the first predetermined time, the caller number of times of user within the time period of the first predetermined time to the second predetermined time and called number of times.The user corresponding with each phone number at the geographical location information of the first predetermined time, and is the information that authentication server is obtained by base station with the caller number of times of user within the time period of the first predetermined time to the second predetermined time and called number of times.
In the present embodiment, a corresponding user of phone number.The IMSI corresponding with phone number is specially the IMSI of Mobile phone card corresponding to this phone number, wherein, Mobile phone card can be SIM card or subscriber identification module (English: UserIdentifyModule, abbreviation: UIM) card etc.The IMEI corresponding with phone number is specially the IMEI of the mobile terminal at Mobile phone card place corresponding to this phone number.
It should be noted that, after having new user to install authentication client on mobile terminals, authentication server needs in the first corresponding relation, record the phone number of this new user and the mark of new authentication client of installing.
Second corresponding relation comprises: the mark of current online authentication client, and the Internet protocol corresponding with the mark of current online authentication client (English: InternetProtocol, abbreviation: IP) address.Here IP address is specially the IP address of the mobile terminal at authentication client place.
First authentication client periodically can send keep-alive message to identity authentication service district, can proper communication between certificate server and the first authentication client to determine one's identity.If authentication server can receive the keep-alive message that the first authentication client sends; then representing between authentication server and the first authentication client can proper communication; authentication server can record the mark of the first authentication client in the second corresponding relation; and the IP address corresponding with the mark of the first authentication client, to represent that the first authentication client is for presence.
If S306 second corresponding relation comprises the mark of the first authentication client, then authentication server determines that the first authentication client is presence.
Wherein, the first authentication client is presence, then represent that authentication server can communicate with the first authentication client.
S307, authentication server, according to the mark of the first authentication client, search the second corresponding relation, obtain the IP address corresponding with the mark of the first authentication client.
S308, authentication server, according to this IP address, send user information request to the first authentication client.
Wherein, user information request is used to indicate user and logs in third-party platform, and asks the first authentication client report of user information, and user profile is used to indicate the signal intelligence of user in preset time period.
Concrete, user profile comprises: at least one in the mark of the first authentication client, the IMSI of this user and the IMEI of this user, and this user is at caller number of times within the time period of the first predetermined time to the second predetermined time of the geographical location information of the first predetermined time, this user and called number of times.
If S309 first authentication client receives the confirmation operation of user, then report the user profile response of carrying user profile to authentication server, carry out authentication to indicate authentication server according to the user's information of carrying in user profile response.
It should be noted that, if when the first authentication client receives user information request, first predetermined time and second predetermined time on the same day also do not arrive, namely the first authentication client does not also record the user profile on the same day, then the first authentication client can report the user profile of the first authentication client record the previous day to authentication server, carries out authentication to indicate authentication server according to the user profile recorded the previous day to this user.
The user profile that S310, authentication server carry in user profile being responded and the user profile that authentication server stores contrast.
Wherein, the user profile that authentication server stores can be obtained by the first corresponding relation.
Concrete, if the user profile of carrying in user profile response is consistent with the user profile that authentication server stores, then authentication server is to the authentication success of this user, performs S311; If the user profile that the user profile of carrying in user profile response and authentication server store is inconsistent, then authentication server is to the authentication failure of this user, performs S312.
S311, authentication server send authentication success message to third-party platform.
After third-party platform receives authentication success message, allow this user to log in and carry out next step operation.
S312, authentication server send authentification failure message to third-party platform.
After third-party platform receives authentification failure message, forbid that this user logs in and carries out next step operation.
It should be noted that, if the secondary failure of the authentication to a certain user of authentication server N continuous, then when authentication server receive for the N+1 time third-party platform to send comprise the ID authentication request of the phone number of this user time, authentication server no longer carries out authentication, sends authentification failure message directly to third-party platform.Wherein, N is the positive integer preset, and such as, N can be 5.
Further, as shown in Figure 4, the identity identifying method in the present embodiment can also comprise:
S313, the first authentication client send lastest imformation to authentication server, upgrade to indicate authentication server the first corresponding relation stored.
Wherein, lastest imformation comprises: phone number, IMSI and IMEI.
S314, authentication server upgrade the first corresponding relation according to lastest imformation.
S313-S314 after user installation first authentication client, can perform before S301; S313-S314 also can perform between S301-S312, as long as any one in the phone number of user, IMSI and IMEI changes, just can perform S313-S314.The embodiment of the present invention is not construed as limiting the sequencing performing S313-S314 and S301-S312.
The identity identifying method that the embodiment of the present invention provides, compared with the identity identifying method of " user name+password+short message verification code " in prior art, user is without the need to remembering the username and password of large amount of complex, third-party platform only need to authentication server and provides phone number, by the phone number of authentication server according to user, authentication is carried out to user, avoids and need to remember the poor problem of Consumer's Experience that the username and password of large amount of complex causes.Compared with the identity identifying method applied based on SIM card in prior art, in this programme, without the need to downloading SIM card application, user only need install authentication client on mobile terminals, just can carry out authentication.Because user profile is used to indicate the signal intelligence of user in preset time period, user profile, for authentication server and authentication client, is all easily obtain, and therefore, adopts this programme can improve the efficiency of authentication.
Embodiment 4
The embodiment of the present invention provides a kind of authentication server, is applied to user and logs in the process of third-party platform, as shown in Figure 5, comprising: receiving element 41, determining unit 42 and transmitting element 43.
Receiving element 41, for receiving the ID authentication request that third-party platform sends, ID authentication request comprises the phone number of user.
Determining unit 42, for the phone number received according to receiving element 41, by searching the corresponding relation between phone number and the mark of authentication client prestored, determine the mark of the first authentication client, the mark being designated the authentication client corresponding with phone number of the first authentication client.
Transmitting element 43, if be presence for the first authentication client, then send user information request to the first authentication client, user information request is used to indicate user and logs in third-party platform, and ask the first authentication client report of user information, user profile is used to indicate the signal intelligence of user in preset time period.
Receiving element 41, also for receiving the user profile response of carrying user profile that the first authentication client reports.
Transmitting element 43, if also receive for receiving element 41 the user profile response of carrying user profile that first authentication client reports, and the user profile of carrying in user profile response is consistent with the user profile that authentication server stores, then send authentication success message to third-party platform; If receiving element 41 receives the user profile response of carrying user profile that the first authentication client reports, and the user profile that the user profile of carrying in user profile response and authentication server store is inconsistent, or, receiving element 41 does not receive the user profile response of carrying user profile that the first authentication client reports, then send authentification failure message to third-party platform.
Further, user profile comprises: at least one in the international identification code IMEI of mobile device of the mark of the first authentication client, the international mobile subscriber identity IMSI of user and user, and user is at caller number of times within the time period of the first predetermined time to the second predetermined time of the geographical location information of the first predetermined time, user and called number of times, the first predetermined time and the second predetermined time are the pre-assigned time parameter of authentication server.
Further, as shown in Figure 6, this authentication server also comprises: memory cell 44.
Memory cell 44, for storing the first corresponding relation and the second corresponding relation, first corresponding relation comprises: the phone number of each user, and the mark of the authentication client corresponding with each phone number, IMSI, IMEI, the first predetermined time, the second predetermined time, user is at caller number of times within the time period of the first predetermined time to the second predetermined time of the geographical location information of the first predetermined time, user and called number of times; Second corresponding relation comprises: the mark of current online authentication client, and the Internet protocol IP address corresponding with the mark of current online authentication client.
Wherein, the geographical location information of first predetermined time corresponding with each phone number, and first predetermined time corresponding with each phone number is the information that authentication server is obtained by base station to the caller number of times in the time period of the second predetermined time and called number of times.
Further, receiving element 41, also for receiving the lastest imformation that the first authentication client sends, lastest imformation comprises: phone number, IMSI and IMEI.
Further, as shown in Figure 7, this authentication server also comprises: updating block 45.
Updating block 45, the lastest imformation for receiving according to receiving element 41 upgrades the first corresponding relation.
Further, determining unit 42, specifically for according to phone number, searches the first corresponding relation, obtains the mark of the first authentication client.
Determining unit 42, if the mark also comprising the first authentication client for the second corresponding relation, then determines that the first authentication client is presence; According to the mark of the first authentication client, search the second corresponding relation, obtain the IP address corresponding with the mark of the first authentication client.
Transmitting element 43, the IP address also for determining according to determining unit 42, sends user information request to the first authentication client.
It should be noted that, in the authentication server that the embodiment of the present invention provides, the specific descriptions of part functional module can corresponding content in reference method embodiment, and the present embodiment is no longer described in detail here.
The authentication server that the embodiment of the present invention provides, compared with the identity identifying method of " user name+password+short message verification code " in prior art, user is without the need to remembering the username and password of large amount of complex, third-party platform only need to authentication server and provides phone number, by the phone number of authentication server according to user, authentication is carried out to user, avoids and need to remember the poor problem of Consumer's Experience that the username and password of large amount of complex causes.Compared with the identity identifying method applied based on SIM card in prior art, in this programme, without the need to downloading SIM card application, user only need install authentication client on mobile terminals, just can carry out authentication.Because user profile is used to indicate the signal intelligence of user in preset time period, user profile, for authentication server and authentication client, is all easily obtain, and therefore, adopts this programme can improve the efficiency of authentication.
Embodiment 5
The embodiment of the present invention provides a kind of authentication client, is applied to user and logs in the process of third-party platform, and this client can be the first authentication client in said method embodiment.As shown in Figure 8, this authentication client comprises: receiving element 51 and transmitting element 52.
Receiving element 51, for receiving the user information request that authentication server sends, user information request is used to indicate user and logs in third-party platform, and asks authentication client report of user information, and user profile is used to indicate the signal intelligence of user in preset time period.
Transmitting element 52, if receive the confirmation operation of user for the first authentication client, then report the user profile response of carrying user profile to authentication server, carry out authentication to indicate authentication server according to the user's information of carrying in user profile response.
Further, user profile comprises: at least one in the international identification code IMEI of mobile device of the mark of authentication client, the international mobile subscriber identity IMSI of user and user, and user is at caller number of times within the time period of the first predetermined time to the second predetermined time of the geographical location information of the first predetermined time, user and called number of times, the first predetermined time and the second predetermined time are the pre-assigned time parameter of authentication server.
Further, receiving element 51, also for receiving the pre-assigned time parameter of authentication server.
Further, as shown in Figure 9, this authentication client also comprises: record cell 53.
Record cell 53, for according to time parameter, recording user is at the geographical location information of the first predetermined time, and the caller number of times of recording user within the time period of the first predetermined time to the second predetermined time and called number of times.
Further, transmitting element 52, also for sending lastest imformation to authentication server, upgrades to indicate authentication server the first corresponding relation stored.
Wherein, lastest imformation comprises: phone number, IMSI and IMEI, first corresponding relation comprises: the phone number of each user, and the mark of the authentication client corresponding with each phone number, IMSI, IMEI, the first predetermined time, the second predetermined time, user is at caller number of times within the time period of the first predetermined time to the second predetermined time of the geographical location information of the first predetermined time, user and called number of times.
It should be noted that, in the authentication client that the embodiment of the present invention provides, the specific descriptions of part functional module can corresponding content in reference method embodiment, and the present embodiment is no longer described in detail here.
The authentication client that the embodiment of the present invention provides, compared with the identity identifying method of " user name+password+short message verification code " in prior art, user is without the need to remembering the username and password of large amount of complex, authentication procedures is completed by authentication server and authentication client, the problem that the Consumer's Experience that the username and password remembering large amount of complex therefore can be avoided to cause is poor.Compared with the identity identifying method applied based on SIM card in prior art, in this programme, without the need to downloading SIM card application, user only need install authentication client on mobile terminals, just can carry out authentication.Because user profile is used to indicate the signal intelligence of user in preset time period, user profile, for authentication server and authentication client, is all easily obtain, and therefore, adopts this programme can improve the efficiency of authentication.
Embodiment 6
The embodiment of the present invention provides a kind of identity authorization system, as shown in Figure 10, comprising: any one authentication server in third-party platform, Fig. 5-7, and any one the authentication client in Fig. 8-9.Wherein, authentication server and authentication client can identity identifying methods to perform the above method in embodiment, and the embodiment of the present invention is no longer described in detail here.
Through the above description of the embodiments, those skilled in the art can be well understood to, for convenience and simplicity of description, only be illustrated with the division of above-mentioned each functional module, in practical application, can distribute as required and by above-mentioned functions and be completed by different functional modules, the internal structure by device is divided into different functional modules, to complete all or part of function described above.The system of foregoing description, the specific works process of device and unit, with reference to the corresponding process in preceding method embodiment, can not repeat them here.
In several embodiments that the application provides, should be understood that, disclosed system, apparatus and method, can realize by another way.Such as, device embodiment described above is only schematic, such as, the division of described module or unit, be only a kind of logic function to divide, actual can have other dividing mode when realizing, such as multiple unit or assembly can in conjunction with or another system can be integrated into, or some features can be ignored, or do not perform.Another point, shown or discussed coupling each other or direct-coupling or communication connection can be by some interfaces, and the indirect coupling of device or unit or communication connection can be electrical, machinery or other form.
The described unit illustrated as separating component or can may not be and physically separates, and the parts as unit display can be or may not be physical location, namely can be positioned at a place, or also can be distributed in multiple network element.Some or all of unit wherein can be selected according to the actual needs to realize the object of the present embodiment scheme.
In addition, each functional unit in each embodiment of the present invention can be integrated in a processing unit, also can be that the independent physics of unit exists, also can two or more unit in a unit integrated.Above-mentioned integrated unit both can adopt the form of hardware to realize, and the form of SFU software functional unit also can be adopted to realize.
If described integrated unit using the form of SFU software functional unit realize and as independently production marketing or use time, can be stored in a computer read/write memory medium.Based on such understanding, the part that technical scheme of the present invention contributes to prior art in essence in other words or all or part of of this technical scheme can embody with the form of software product, this computer software product is stored in a storage medium, comprising some instructions in order to make a computer equipment (can be personal computer, server, or the network equipment etc.) or processor (English: all or part of step processor) performing method described in each embodiment of the present invention.And aforesaid storage medium comprises: USB flash disk, portable hard drive, read-only memory are (English: Read-OnlyMemory, abbreviation: ROM), random access memory (English: RandomAccessMemory, abbreviation: RAM), magnetic disc or CD etc. various can be program code stored medium.
The above; be only the specific embodiment of the present invention, but protection scope of the present invention is not limited thereto, is anyly familiar with those skilled in the art in the technical scope that the present invention discloses; change can be expected easily or replace, all should be encompassed within protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion with the protection range of described claim.

Claims (18)

1. an identity identifying method, be applied to user and log in the process of third-party platform, it is characterized in that, described identity identifying method comprises:
Authentication server receives the ID authentication request that third-party platform sends, and described ID authentication request comprises the phone number of user;
Described authentication server is according to described phone number, by searching the corresponding relation between phone number and the mark of authentication client prestored, determine the mark of the first authentication client, the mark being designated the authentication client corresponding with described phone number of described first authentication client;
If described first authentication client is presence, then described authentication server sends user information request to described first authentication client, described user information request is used to indicate described user and is logging in described third-party platform, and ask described first authentication client report of user information, described user profile is used to indicate the signal intelligence of described user in preset time period;
If described authentication server receives the user profile response of carrying described user profile that described first authentication client reports, and the described user profile of carrying in described user profile response is consistent with the user profile that described authentication server stores, then described authentication server sends authentication success message to described third-party platform; If described authentication server receives the user profile response of carrying described user profile that described first authentication client reports, and the user profile that the described user profile of carrying in described user profile response and described authentication server store is inconsistent, or, described authentication server does not receive the user profile response of carrying described user profile that described first authentication client reports, then described authentication server sends authentification failure message to described third-party platform.
2. identity identifying method according to claim 1, it is characterized in that, described user profile comprises: the mark of described first authentication client, at least one in the international identification code IMEI of mobile device of the international mobile subscriber identity IMSI of described user and described user, and described user is at the geographical location information of the first predetermined time, described user at described first predetermined time to the caller number of times in the time period of the second predetermined time and called number of times, described first predetermined time and described second predetermined time are the pre-assigned time parameter of described authentication server.
3. identity identifying method according to claim 2, it is characterized in that, described authentication server stores the first corresponding relation and the second corresponding relation, described first corresponding relation comprises: the phone number of each user, and the mark of the authentication client corresponding with each phone number, IMSI, IMEI, the first predetermined time, the second predetermined time, user is at caller number of times within the time period of the first predetermined time to the second predetermined time of the geographical location information of the first predetermined time, user and called number of times; Described second corresponding relation comprises: the mark of current online authentication client, and the Internet protocol IP address corresponding with the mark of current online authentication client;
Wherein, the geographical location information of described first predetermined time corresponding with each phone number, and described first predetermined time corresponding with each phone number is the information that described authentication server is obtained by base station to the caller number of times in the time period of the second predetermined time and called number of times.
4. identity identifying method according to claim 3, is characterized in that, described identity identifying method also comprises:
Described authentication server receives the lastest imformation that described first authentication client sends, and described lastest imformation comprises: phone number, IMSI and IMEI;
Described authentication server upgrades described first corresponding relation according to described lastest imformation.
5. the identity identifying method according to claim 3 or 4, it is characterized in that, described authentication server is according to described phone number, by searching the corresponding relation between phone number and the mark of authentication client prestored, determine the mark of the first authentication client, comprising:
Described authentication server, according to described phone number, searches described first corresponding relation, obtains the mark of described first authentication client;
If described first authentication client is presence, then described authentication server sends user information request to described first authentication client, comprising:
If described second corresponding relation comprises the mark of described first authentication client, then described authentication server determines that described first authentication client is presence;
Described authentication server, according to the mark of described first authentication client, searches described second corresponding relation, obtains the IP address corresponding with the mark of described first authentication client;
Described authentication server, according to described IP address, sends described user information request to described first authentication client.
6. an identity identifying method, be applied to user and log in the process of third-party platform, it is characterized in that, described identity identifying method comprises:
First authentication client receives the user information request that authentication server sends, described user information request is used to indicate described user and is logging in described third-party platform, and ask described first authentication client report of user information, described user profile is used to indicate the signal intelligence of user in preset time period;
If described first authentication client receives the confirmation operation of described user, then report the user profile response of carrying described user profile to described authentication server, according to the described user profile of carrying in described user profile response, authentication is carried out to described user to indicate described authentication server.
7. identity identifying method according to claim 6, it is characterized in that, described user profile comprises: the mark of described first authentication client, at least one in the international identification code IMEI of mobile device of the international mobile subscriber identity IMSI of described user and described user, and described user is at the geographical location information of the first predetermined time, described user at described first predetermined time to the caller number of times in the time period of the second predetermined time and called number of times, described first predetermined time and described second predetermined time are the pre-assigned time parameter of described authentication server.
8. identity identifying method according to claim 7, is characterized in that, described identity identifying method also comprises:
Described first authentication client receives the pre-assigned described time parameter of described authentication server;
Described first authentication client is according to described time parameter, record the geographical location information of described user at described first predetermined time, and record the caller number of times of described user within the time period of described first predetermined time to described second predetermined time and called number of times.
9. the identity identifying method according to any one of claim 6-8, is characterized in that, described identity identifying method also comprises:
Described first authentication client sends lastest imformation to described authentication server, upgrades to indicate described authentication server the first corresponding relation stored;
Wherein, described lastest imformation comprises: phone number, IMSI and IMEI, described first corresponding relation comprises: the phone number of each user, and the mark of the authentication client corresponding with each phone number, IMSI, IMEI, the first predetermined time, the second predetermined time, user is at caller number of times within the time period of the first predetermined time to the second predetermined time of the geographical location information of the first predetermined time, user and called number of times.
10. an authentication server, is applied to user and logs in the process of third-party platform, it is characterized in that, comprising:
Receiving element, for receiving the ID authentication request that third-party platform sends, described ID authentication request comprises the phone number of user;
Determining unit, for the described phone number received according to described receiving element, by searching the corresponding relation between phone number and the mark of authentication client prestored, determine the mark of the first authentication client, the mark being designated the authentication client corresponding with described phone number of described first authentication client;
Transmitting element, if be presence for described first authentication client, then send user information request to described first authentication client, described user information request is used to indicate described user and is logging in described third-party platform, and ask described first authentication client report of user information, described user profile is used to indicate the signal intelligence of described user in preset time period;
Described receiving element, also for receiving the user profile response of carrying described user profile that described first authentication client reports;
Described transmitting element, if also receive for described receiving element the user profile response of carrying described user profile that described first authentication client reports, and the described user profile of carrying in described user profile response is consistent with the user profile that described authentication server stores, then send authentication success message to described third-party platform; If described receiving element receives the user profile response of carrying described user profile that described first authentication client reports, and the user profile that the described user profile of carrying in described user profile response and described authentication server store is inconsistent, or, described receiving element does not receive the user profile response of carrying described user profile that described first authentication client reports, then send authentification failure message to described third-party platform.
11. authentication servers according to claim 10, it is characterized in that, described user profile comprises: the mark of described first authentication client, at least one in the international identification code IMEI of mobile device of the international mobile subscriber identity IMSI of described user and described user, and described user is at the geographical location information of the first predetermined time, described user at described first predetermined time to the caller number of times in the time period of the second predetermined time and called number of times, described first predetermined time and described second predetermined time are the pre-assigned time parameter of described authentication server.
12. authentication servers according to claim 11, is characterized in that, described authentication server also comprises:
Memory cell, for storing the first corresponding relation and the second corresponding relation, described first corresponding relation comprises: the phone number of each user, and the mark of the authentication client corresponding with each phone number, IMSI, IMEI, the first predetermined time, the second predetermined time, user is at caller number of times within the time period of the first predetermined time to the second predetermined time of the geographical location information of the first predetermined time, user and called number of times; Described second corresponding relation comprises: the mark of current online authentication client, and the Internet protocol IP address corresponding with the mark of current online authentication client;
Wherein, the geographical location information of described first predetermined time corresponding with each phone number, and described first predetermined time corresponding with each phone number is the information that described authentication server is obtained by base station to the caller number of times in the time period of the second predetermined time and called number of times.
13. authentication servers according to claim 12, is characterized in that, described receiving element, and also for receiving the lastest imformation that described first authentication client sends, described lastest imformation comprises: phone number, IMSI and IMEI;
Described authentication server also comprises:
Updating block, upgrades described first corresponding relation for the described lastest imformation received according to described receiving element.
14. authentication servers according to claim 12 or 13, is characterized in that, described determining unit, specifically for according to described phone number, search described first corresponding relation, obtain the mark of described first authentication client;
Described determining unit, if the mark also comprising described first authentication client for described second corresponding relation, then determines that described first authentication client is presence; According to the mark of described first authentication client, search described second corresponding relation, obtain the IP address corresponding with the mark of described first authentication client;
Described transmitting element, the described IP address also for determining according to described determining unit, sends described user information request to described first authentication client.
15. 1 kinds of authentication clients, are applied to user and log in the process of third-party platform, it is characterized in that, comprising:
Receiving element, for receiving the user information request that authentication server sends, described user information request is used to indicate described user and is logging in described third-party platform, and ask described authentication client report of user information, described user profile is used to indicate the signal intelligence of user in preset time period;
Transmitting element, if receive the confirmation operation of described user for described first authentication client, then report the user profile response of carrying described user profile to described authentication server, according to the described user profile of carrying in described user profile response, authentication is carried out to described user to indicate described authentication server.
16. authentication clients according to claim 15, it is characterized in that, described user profile comprises: the mark of described authentication client, at least one in the international identification code IMEI of mobile device of the international mobile subscriber identity IMSI of described user and described user, and described user is at the geographical location information of the first predetermined time, described user at described first predetermined time to the caller number of times in the time period of the second predetermined time and called number of times, described first predetermined time and described second predetermined time are the pre-assigned time parameter of described authentication server.
17. authentication clients according to claim 16, is characterized in that, described receiving element, also for receiving the pre-assigned described time parameter of described authentication server;
Described authentication client also comprises:
Record cell, for according to described time parameter, records the geographical location information of described user at described first predetermined time, and records the caller number of times of described user within the time period of described first predetermined time to described second predetermined time and called number of times.
18. authentication clients according to any one of claim 15-17, is characterized in that, described transmitting element, also for sending lastest imformation to described authentication server, upgrade to indicate described authentication server the first corresponding relation stored;
Wherein, described lastest imformation comprises: phone number, IMSI and IMEI, described first corresponding relation comprises: the phone number of each user, and the mark of the authentication client corresponding with each phone number, IMSI, IMEI, the first predetermined time, the second predetermined time, user is at caller number of times within the time period of the first predetermined time to the second predetermined time of the geographical location information of the first predetermined time, user and called number of times.
CN201510484932.2A 2015-08-07 2015-08-07 Identity authentication method and identity authentication device Pending CN105072112A (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CN201510484932.2A CN105072112A (en) 2015-08-07 2015-08-07 Identity authentication method and identity authentication device
US15/230,059 US20170041307A1 (en) 2015-08-07 2016-08-05 Identity authentication method and device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510484932.2A CN105072112A (en) 2015-08-07 2015-08-07 Identity authentication method and identity authentication device

Publications (1)

Publication Number Publication Date
CN105072112A true CN105072112A (en) 2015-11-18

Family

ID=54501392

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510484932.2A Pending CN105072112A (en) 2015-08-07 2015-08-07 Identity authentication method and identity authentication device

Country Status (2)

Country Link
US (1) US20170041307A1 (en)
CN (1) CN105072112A (en)

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105897771A (en) * 2016-06-22 2016-08-24 中国联合网络通信集团有限公司 Identity authentication method, authentication server and third-party platform
CN105978688A (en) * 2016-05-30 2016-09-28 葛峰 Information-separation-management-based cross-domain safety authentication method
WO2017088634A1 (en) * 2015-11-27 2017-06-01 中兴通讯股份有限公司 Third-party application authentication method, authentication server, terminal and management server
CN107025622A (en) * 2016-02-01 2017-08-08 昆山研达电脑科技有限公司 Identity information uses method and its system safely
EP3324662A1 (en) * 2016-11-21 2018-05-23 Beijing Xiaomi Mobile Software Co., Ltd. Identity verification method, apparatus and system, computer program and recording medium
CN110855441A (en) * 2018-08-20 2020-02-28 金联汇通信息技术有限公司 Method, device and equipment for authenticating electronic identity and storage medium
CN111010363A (en) * 2019-09-20 2020-04-14 中国银联股份有限公司 Information authentication method and system, authentication module and user terminal
CN111104657A (en) * 2018-10-25 2020-05-05 中国电信股份有限公司 Identity authentication method and system, authentication platform, user terminal and application terminal
CN111314343A (en) * 2020-02-18 2020-06-19 中国联合网络通信集团有限公司 Account management method and device and readable storage medium
CN111641718A (en) * 2020-06-01 2020-09-08 北京弘远博学科技有限公司 Method for authenticating APP identity at mobile phone terminal
CN113111319A (en) * 2021-04-07 2021-07-13 珠海市鸿瑞信息技术股份有限公司 Identity authentication system and method based on industrial control system
CN115002074A (en) * 2021-04-27 2022-09-02 中移互联网有限公司 Information acquisition method, device, equipment and storage medium
WO2023083368A1 (en) * 2021-11-15 2023-05-19 马山河 Identity verification system and method

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10630696B1 (en) * 2016-09-23 2020-04-21 Wells Fargo Bank, N.A. Storing call session information in a telephony system
CN107426711B (en) * 2017-07-10 2021-01-08 广州视源电子科技股份有限公司 Method, device and system for binding or unbinding mobile phone number
CN110266582B (en) * 2019-05-29 2022-08-26 深圳市梦网科技发展有限公司 Message pushing method, system, server and communication terminal
CN112491614B (en) * 2020-11-26 2023-08-11 许昌许继软件技术有限公司 Configuration information online automatic validation method and system for embedded equipment

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103249045A (en) * 2013-05-13 2013-08-14 华为技术有限公司 Identification method, device and system
CN103269270A (en) * 2013-04-25 2013-08-28 安徽杨凌科技有限公司 Real-name authentication safe login method and system based on cell phone number
CN103905194A (en) * 2012-12-26 2014-07-02 中国电信股份有限公司 Identity traceability authentication method and system
US20140189808A1 (en) * 2012-12-28 2014-07-03 Lookout, Inc. Multi-factor authentication and comprehensive login system for client-server networks

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103905194A (en) * 2012-12-26 2014-07-02 中国电信股份有限公司 Identity traceability authentication method and system
US20140189808A1 (en) * 2012-12-28 2014-07-03 Lookout, Inc. Multi-factor authentication and comprehensive login system for client-server networks
CN103269270A (en) * 2013-04-25 2013-08-28 安徽杨凌科技有限公司 Real-name authentication safe login method and system based on cell phone number
CN103249045A (en) * 2013-05-13 2013-08-14 华为技术有限公司 Identification method, device and system

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
刘镝,张云勇,张尼,张曼君: "《"沃互联"统一认证技术研究》", 《电信科学》 *

Cited By (21)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2017088634A1 (en) * 2015-11-27 2017-06-01 中兴通讯股份有限公司 Third-party application authentication method, authentication server, terminal and management server
CN106817347A (en) * 2015-11-27 2017-06-09 中兴通讯股份有限公司 Third-party application authentication method, certificate server, terminal and management server
CN107025622A (en) * 2016-02-01 2017-08-08 昆山研达电脑科技有限公司 Identity information uses method and its system safely
CN105978688A (en) * 2016-05-30 2016-09-28 葛峰 Information-separation-management-based cross-domain safety authentication method
CN105978688B (en) * 2016-05-30 2019-04-16 葛峰 A kind of cross-domain safety certifying method based on information separation management
CN105897771B (en) * 2016-06-22 2019-04-09 中国联合网络通信集团有限公司 Identity identifying method, certificate server and third-party platform
CN105897771A (en) * 2016-06-22 2016-08-24 中国联合网络通信集团有限公司 Identity authentication method, authentication server and third-party platform
EP3324662A1 (en) * 2016-11-21 2018-05-23 Beijing Xiaomi Mobile Software Co., Ltd. Identity verification method, apparatus and system, computer program and recording medium
US10313870B2 (en) 2016-11-21 2019-06-04 Beijing Xiaomi Mobile Software Co., Ltd. Identity verification method and apparatus, and storage medium
CN110855441B (en) * 2018-08-20 2022-12-02 金联汇通信息技术有限公司 Method, device and equipment for authenticating electronic identity and storage medium
CN110855441A (en) * 2018-08-20 2020-02-28 金联汇通信息技术有限公司 Method, device and equipment for authenticating electronic identity and storage medium
CN111104657A (en) * 2018-10-25 2020-05-05 中国电信股份有限公司 Identity authentication method and system, authentication platform, user terminal and application terminal
CN111010363A (en) * 2019-09-20 2020-04-14 中国银联股份有限公司 Information authentication method and system, authentication module and user terminal
CN111314343B (en) * 2020-02-18 2022-08-02 中国联合网络通信集团有限公司 Account management method and device and readable storage medium
CN111314343A (en) * 2020-02-18 2020-06-19 中国联合网络通信集团有限公司 Account management method and device and readable storage medium
CN111641718A (en) * 2020-06-01 2020-09-08 北京弘远博学科技有限公司 Method for authenticating APP identity at mobile phone terminal
CN111641718B (en) * 2020-06-01 2023-06-20 北京弘远博学科技有限公司 Mobile phone terminal APP identity authentication method
CN113111319A (en) * 2021-04-07 2021-07-13 珠海市鸿瑞信息技术股份有限公司 Identity authentication system and method based on industrial control system
CN115002074A (en) * 2021-04-27 2022-09-02 中移互联网有限公司 Information acquisition method, device, equipment and storage medium
CN115002074B (en) * 2021-04-27 2023-08-15 中移互联网有限公司 Information acquisition method, device, equipment and storage medium
WO2023083368A1 (en) * 2021-11-15 2023-05-19 马山河 Identity verification system and method

Also Published As

Publication number Publication date
US20170041307A1 (en) 2017-02-09

Similar Documents

Publication Publication Date Title
CN105072112A (en) Identity authentication method and identity authentication device
CN104253686B (en) Method, equipment and the system that account logs in
US9106665B2 (en) Automatic device authentication and account identification without user input when application is started on mobile station
US8959234B2 (en) Method and system for providing online services corresponding to multiple mobile devices, server, mobile device, and computer program product
CN111148088B (en) Method, device, equipment and storage medium for managing mobile terminal and system
CN102833777B (en) Method for testing PORTAL performance of access controller
CN104580496A (en) Virtual machine visit system and server based on temporary agent
CN104901925A (en) End-user identity authentication method, device and system and terminal device
CN107241336B (en) Identity verification method and device
CN105227536A (en) A kind of Quick Response Code login method and equipment
CN106331003B (en) The access method and device of application door system on a kind of cloud desktop
CN102299936A (en) Method and device for accessing application websites
CN102480501A (en) Application resource downloading method and associated equipment
CN104580085A (en) Business data updating method, system, client side and server
CN105657781B (en) WiFi network access method and device
CN111132305B (en) Method for 5G user terminal to access 5G network, user terminal equipment and medium
CN109495874B (en) Profile downloading method and device
CN105722072A (en) Business authorization method, device, system and router
CN106465076A (en) Control method and terminal for short message reading
CN113271299B (en) Login method and server
CN102984261B (en) Network service login method, equipment and system based on mobile telephone terminal
CN111353136B (en) Method and device for processing operation request
CN103561063A (en) Method and terminal for logging onto set top box
CN103747423B (en) A kind of register method of terminal applies, device and system
CN103067260B (en) Realize method and the device of instant messaging

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20151118

WD01 Invention patent application deemed withdrawn after publication